|
[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]
RE: log analyser |  |
- To: "'aditya mukadam'" <[EMAIL PROTECTED]>, <[EMAIL PROTECTED]>, "'security basics'" <[EMAIL PROTECTED]>
- Subject: RE: log analyser
- From: "Ramki B Ramakrishnan" <[EMAIL PROTECTED]>
- Date: Sat, 6 Jun 2009 20:20:27 +0530
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:from:to:references :in-reply-to:subject:date:message-id:mime-version:content-type :content-transfer-encoding:x-mailer:thread-index:content-language; bh=Cfc4BT2Vb/J2jBCXgyXg6KiicbB3XIAWzV+Plgl13eM=; b=uCq3LvGS8wqKQXRYNQhRLD0S6GPJT6COrK7Ck3xIwThfcvYwNZbo4spxdpQWzEhO3L rLevYH0P4/9yf1enewDYRVXXK+CkFrYkAw42W26jlifiWNLxvA9xBwuNio9IKjd3DFoE KQlnirNgBkON5A1rGUcSovExQlY0rvIhhY1LQ=
- In-reply-to: <[EMAIL PROTECTED]>
- References: <[EMAIL PROTECTED]> <[EMAIL PROTECTED]>
- Thread-index: AcnjqCYZnkeEjGezTCmAzUZxHJZODwDDbKkA
 |
| |
One more to the list - Cisco systems MARS http://www.cisco.com/go/mars
HTH
Ramki
-----
Ramki B. Ramakrishnan
Security Enthusiast
GIAC:GSEC, CvA
-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On
Behalf Of aditya mukadam
Sent: Tuesday, June 02, 2009 7:54 AM
To: [EMAIL PROTECTED]; security basics
Subject: Re: log analyser
Andy,
There are quite lot of solutions out there based on your requirement
to collect, correlate, analyze etc . I would recommend you to take a
look at below:
1) Netforensics
2) LogRhythm
3) Juniper STRM
4) ArcSight
Feel free to let me know if any questions.
Thanks,
Aditya Govind Mukadam
CISSP,CEH, JNSA-Advanced Security, JNCIA-SSL,CQS-PIX,CQS-VPN
http://www.linkedin.com/in/adityamukadam
On Fri, May 29, 2009 at 4:55 AM, <[EMAIL PROTECTED]> wrote:
> Hi,
>
> can someone of you recommend a good enterprise log analyser solution? i
have to collect, corrolate and analyse about 1200 windows machines and 200
linux boxes. i want to do this in real-time, trigger actions (like email
notification), make sense out of e.g. ten failed login attempts following
the one successful etc.
>
> any hint would be helpful
> thanks
> andy
>
> ------------------------------------------------------------------------
> This list is sponsored by: InfoSec Institute
>
> Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both
Instructor-Led and Online formats is the most concentrated exam prep
available. Comprehensive course materials and an expert instructor means you
pass the exam. Gain a laser like insight into what is covered on the exam,
with zero fluff!
>
> http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
> ------------------------------------------------------------------------
>
>
------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute
Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both
Instructor-Led and Online formats is the most concentrated exam prep
available. Comprehensive course materials and an expert instructor means you
pass the exam. Gain a laser like insight into what is covered on the exam,
with zero fluff!
http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------
------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute
Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both Instructor-Led and Online formats is the most concentrated exam prep available. Comprehensive course materials and an expert instructor means you pass the exam. Gain a laser like insight into what is covered on the exam, with zero fluff!
http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------
| |